Skip to content

Conversation

@namest504
Copy link

Fixed: #18092

The JwtTypeValidator was performing a case-sensitive check for the JWT typ header, which was a change from the behavior of the previous Nimbus JOSEObjectTypeVerifier.

This commit updates the JwtTypeValidator to be case-insensitive.
New test cases have been added to verify this change.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

status: waiting-for-triage An issue we've not yet triaged

Projects

None yet

Development

Successfully merging this pull request may close these issues.

JwtTypeValidator is case sensitive in 7.0-m3

2 participants